Wednesday, October 26, 2011

Common Vulnerabilities and Exposures (CVE)number

CVE-2011-0611
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and
Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before
2.6.19140; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader 9.x
before 9.4.4 and 10.x through 10.0.1 on Windows, Adobe Reader 9.x
before 9.4.4 and 10.x before 10.0.3 on Mac OS X, and Adobe Acrobat 9.x
before 9.4.4 and 10.x before 10.0.3 on Windows and Mac OS X allow remote
attackers to execute arbitrary code or cause a denial of service
(application crash) via crafted Flash content; as demonstrated by a
Microsoft Office document with an embedded .swf file that has a size
inconsistency in a "group of included constants," object type confusion,
ActionScript that adds custom functions to prototypes, and Date
objects; and as exploited in the wild in April 2011.

Original Message

U.S. Secretary of Defense Leon Panetta meets with service members at the U.S. Yokota Air Base in Fussa, west of Tokyo, Monday, Oct. 24, 2011. Panetta arrived in Japan Monday on the second leg of a weeklong Asia tour.

Malware samples are available for download by any responsible whitehat researcher. By downloading the samples, anyone waives all rights to claim punitive, incidental and consequential damages resulting from mishandling or self-infection.